Principal Cyber Security Engineer

Two Six Technologies · Washington DC

Company

Two Six Technologies

Location

Washington DC

Type

Full Time

Job Description

Two Six Technologies is growing and we are seeking a Principal Cybersecurity Engineer to join our Corporate team. As the Principal Cybersecurity Engineer you will analyze, plan, implement, maintain, troubleshoot and enhance large complex systems and networks.   Ideally, you would possess a wide range of security experience as well as expert knowledge of the NIST 800 series 800-53, 171) and CMMC 2.0 compliance in a Federal Government Contracting environment. 

What you will do:

  • Architect, design, implement, maintain and operate information system security controls and countermeasures; supervise and train operators in the administration of these systems; document the operation, use, and expected outputs of these systems.
  • Work directly with team leads, developers and operations personnel both on policy and technical implementation of technologies.
  • Analyze and recommend security controls and procedures in business processes related to use of information systems and assets, and provides oversight to ensure compliance.
  • Monitors information systems for security incidents and vulnerabilities; develops monitoring and visibility capabilities; reports on incidents, vulnerabilities, and trends to IT or executive management.
  • Oversees the response to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches; engages, interacts and coordinates with third-party incident responders, including law enforcement.
  • Oversees the administration of authentication and access controls, including security/access roles, and access permissions to information assets.
  • Analyzes trends, news and changes in threat and compliance environment with respect to organizational risk; advises organization management and develops and executes mitigation of risk; oversees risk and compliance self-assessments, and engages and coordinates third-party risk and compliance assessments.
  • Analyzes and oversees the development of information security governance, including organizational policies, procedures, standards, baselines and guidelines with respect to information security and use and operation of information security management frameworks such as NIST 800-171 and CMMC 2.0.
  • Oversees the development and administration of information security training and awareness programs.

What you will need:

  • Bachelor's Degree in Computer Science, Information Technology (IT), or a related discipline, or equivalent combination of education and work experience
  • 8+ years of solid, diverse experience in Cyber Security Engineering and Incident Response
  • 2 + years in people management/leadership experience
  • Ability to lead, motivate and direct team members; and strong performance management skills to include coaching, goal setting, holding team members across multiple levels accountable
  • Ability to demonstrate analytical skills, technical knowledge, and practical application of cyber and information security principles from technical teams to senior executives
  • Knowledge of enterprise security solutions (Endpoint Detection and Response, Security information and Event Management, IT services management and Cloud, etc.) 
  • Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth)
  • Knowledge of an organization's information classification program and procedures for information compromise
  • Proven experience in an information assurance, IT Risk and Compliance, information security, IT & Security audit, collaborating with external auditors (3PAOs) or other similar IT role involving IT security and compliance
  • High level of proficiency in supporting a variety of NIST 800-171 & CMMC functions, including: client environment as-is assessments, Plan of Action & Milestones (POAM) identification & documentation, non-compliance remediation and recommendations, policy and procedure creation, and separation of duties.
  • US Citizenship with the ability to obtain a government security clearance

What we would like:

  • CISSP Certification
  • Direct experience in network security (SOC, SIRT, CSIRT) investigating targeted intrusions through complex network segments
  • Experience working as a part of a Third Party Assessment Organization (3PAO)
  • Linux and scripting languages experience
  • Demonstrated skill of identifying, capturing, containing, and reporting malware
  • Experience with Cloud Computing Technologies (AWS, GCP, Azure)
  • AWS Certification
  • Experience administering additional security tools such as VPN, Sumo Logic, Qualys, and Automox
  • Active TS clearance

Two Six Technologies is an Equal Opportunity Employer and does not discriminate in employment opportunities or practices based on race (including traits historically associated with race, such as hair texture, hair type and protective hair styles (e.g., braids, twists, locs and twists)), color, religion, national origin, sex (including pregnancy, childbirth or related medical conditions and lactation), sexual orientation, gender identity or expression, age (40 and over), marital status, disability, genetic information, and protected veteran status or any other characteristic protected by applicable federal, state, or local law. 

If you are an individual with a disability and would like to request reasonable workplace accommodation for any part of our employment process, please send an email to [email protected]. Information provided will be kept confidential and used only to the extent required to provide needed reasonable accommodations.

Additionally, please be advised that this business uses E-Verify in its hiring practices.

EOE, including disability/vets. 

By submitting the following application, I hereby certify that to the best of my knowledge, the information provided is true and accurate.

Apply Now

Date Posted

05/18/2023

Views

7

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Information Security Consultant - Application Security Engineer - MassMutual

Views in the last 30 days - 0

MassMutual is seeking an experienced Application Security Engineer to join their dedicated team The role involves driving security best practices cond...

View Details

2025 Sensor Modeling and Simulation Analysis Engineer - The Aerospace Corporation

Views in the last 30 days - 0

The Aerospace Corporation is a trusted partner to the nations space programs providing technical expertise and innovative solutions across satellite l...

View Details

Principal Project Manager, Commercial Bank - Capital One

Views in the last 30 days - 0

Capital One a Fortune 500 company and one of the nations top 10 banks is seeking a Principal Project Manager for its Commercial Bank The role involves...

View Details

Regional Director Public Sector Sales DOW - Chainguard

Views in the last 30 days - 0

The job seeks a Regional Director with sales expertise and security clearance to lead public sector initiatives and build partnerships Responsibilitie...

View Details

Manager, Customer Success - Bold Penguin

Views in the last 30 days - 0

Bold Penguin a leading digital solution platform for small commercial insurance is seeking a Manager of Customer Success The role involves leading a t...

View Details